certServer.admin.certificate
495
Operations
Description
Allow/Deny
Access
Targeted
Users/
Groups
Agents
Auditors
modify
Add, delete, and update ACL evaluators.
Allow
Administrators
Table D.2. certServer.acl.configuration ACL Summary
D.2.2. certServer.admin.certificate
Controls which users can import a certificate through a Certificate Manager. By default, this operation
is allowed to everyone. The default configuration is:
allow (import) user="anybody"
NOTE
This entry is associated with the CA administration web interface which is used to
configure the instance. This ACL is only available during instance configuration and is
unavailable after the CA is running.
Operations
Description
Allow/Deny
Access
Targeted
Users/
Groups
import
Import a CA administrator certificate.
Allow
Anyone
Table D.3. certServer.admin.certificate ACL Summary
D.2.3. certServer.admin.request.enrollment
Controls access to enrollment processes, including submitting enrollment requests and processing
and accessing enrollment requests. By default, anyone can submit a certificate request, but only CA
agents can process them.
NOTE
This entry is associated with the CA administration web interface which is used to
configure the instance. This ACL is only available during instance configuration and is
unavailable after the CA is running.
allow (submit) user="anybody";allow (read,execute) group="Certificate Manager Agents"
Operations
Description
Allow/Deny
Access
Targeted
Users/
Groups
submit
Submit a CA administrator certificate enrollment request.
Allow
Anyone
read
View a CA administrator certificate enrollment request.
Allow
Agents
Содержание CERTIFICATE SYSTEM 8.0 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 8 0 Admin Guide Publication date July 22 2009 updated on March 25 2010 ...
Страница 42: ...20 ...
Страница 43: ...Part I Setting up Certificate Services ...
Страница 44: ......
Страница 190: ...168 ...
Страница 208: ...186 ...
Страница 223: ...Part II Additional Configuration to Manage CA Services ...
Страница 224: ......
Страница 256: ...234 ...
Страница 270: ...248 ...
Страница 280: ...258 ...
Страница 292: ...270 ...
Страница 293: ...Part III Managing the Subsystem Instances ...
Страница 294: ......
Страница 363: ...Managing RA Users 341 5 The user details page shows the person s UID full name email address and user SSL certificate ...
Страница 408: ...386 ...
Страница 438: ...416 ...
Страница 439: ...Part IV References ...
Страница 440: ......
Страница 503: ...Netscape Defined Certificate Extensions Reference 481 OID 2 16 840 1 113730 13 ...
Страница 504: ...482 ...
Страница 556: ...534 ...
Страница 564: ...542 ...